rquotad in nfs-utils (rquota_server.c) before 1.0.6-r6 on 64-bit architectures does not properly perform an integer conversion, which leads to a stack-based buffer overflow and allows remote attackers to execute arbitrary code via a crafted NFS request.
| Software | From | Fixed in |
|---|---|---|
| nfs / nfs-utils | 1.0.1 | 1.0.1.x |
| nfs / nfs-utils | 1.0.2 | 1.0.2.x |
| nfs / nfs-utils | 1.0.3 | 1.0.3.x |
| nfs / nfs-utils | 1.0.6 | 1.0.6.x |
| nfs / nfs-utils | 1.0 | 1.0.x |
| nfs / nfs-utils | 1.0.4 | 1.0.4.x |
| redhat / enterprise_linux_desktop | 3.0 | 3.0.x |
| redhat / enterprise_linux | 3.0 | 3.0.x |